CVE-2020-24025
11.01.2021, 19:15
Certificate validation in node-sass 2.0.0 to 4.14.1 is disabled when requesting binaries even if the user is not specifying an alternative download path.Enginsight
Vendor | Product | Version |
---|---|---|
sass-lang | node-sass | 2.0.0 ≤ 𝑥 ≤ 4.14.1 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Common Weakness Enumeration